The CA/B Forum is reducing maximum TLS certificate lifetimes to 47 days by 2029, with interim reductions to 100 days in 2027 and 200 days in 2026. Apple argues shorter lifetimes mitigate risks from outdated certificate information and unreliable revocation systems, requiring widespread adoption of automated certificate management.